Speculative Historical Malware Issue?

Discussion in 'Malware Help - Public (Anyone Can Post & Respond)' started by blaster_bob, Jun 11, 2021.

  1. blaster_bob

    blaster_bob Private E-2

    Hi all

    Over 10 years ago I managed to get some malware or the like on a USB drive, it was called chess.exe, it basically cloned itself to every USB that then went into my PC. I managed to get rid of it back then...

    Which brings us up to today, I just put an old USB into my PC (wondering what was on it), and low and behold, there was chess.exe. The USB showed up as a disk rather than a drive, 0 space available, disk icon etc. I nearly cried! Thought I had gotten rid of all the old infected USBs.

    Would something like the chess.exe have any effect on a modern iMac? Let me explain... The PC in question is running Vista, and has an old copy of Malwarebytes on it, but it hasn't been connected to the internet for nearly 15 years, and I'm not about to connect it any time soon. I'd like to get a log file from Malwarebytes (and any other files needed) to the good people here, but I'm trying to work out how to do that without infecting every USB stick I have and then infecting my other PCs which are connected to the internet. I'm wondering if I can sacrifice one USB stick and upload everything via my iMac instead? Or is it likely to cause issues on the Mac too?

    Any help would be greatly appreciated. Thanks all.
     
  2. blaster_bob

    blaster_bob Private E-2

    If the above doesn't make any sense, my apologies, let me know, I'll try to explain in more detail.
     
  3. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    For the external Hard Drive and a USB stick.

    Insert your flash drive before you begin. Hold down the Shift key when inserting the flash drive until Windows detects it to bypass the autorun feature. This will keep the autorun.inf from executing automatically.

    Please have all your removable storage devices ready for disinfection.

    Download Flash Disinfector by sUBs and save it to your desktop.
    * Double-click Flash_Disinfector.exe to run it.
    * Your desktop and icons may disappear. This is normal.
    * It will do a cleanup of removable storage devices, and write a protected Autorun.inf file to help prevent re-infection.
    * Follow any prompts that may appear.
    * The utility may ask you to insert your flash drive and/or other removable drives including your mobile phone. Please do so and allow the utility to clean up those drives as well.
    * Wait until it has finished scanning and then exit the program.
    * There will be no GUI interface or log file produced.
    * Reboot your computer when done.

    Note: Flash_Disinfector will create a hidden folder named autorun.inf in each partition and every USB drive plugged in when you ran it. Don't delete this folder. It will help protect your drives from future infection.
     
  4. blaster_bob

    blaster_bob Private E-2

    Hi Tim, thanks for this, greatly appreciated.

    Brought Flash Disinfector over from the Mac on a fresh USB stick, copied it to the desktop and it ran and completed with no issues. Do I need to do anything else?
     
  5. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Just make sure Chess.exe didn't transfer to your computer.
     
  6. blaster_bob

    blaster_bob Private E-2

    Is there a better way to find chess.exe than doing a simple search through the OS? I'm assuming it would try to hide itself in some way?
     
  7. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Since it is not malware, I doubt it would be hiding.
     
  8. blaster_bob

    blaster_bob Private E-2

    OS search has thrown nothing up, neither has Malwarebytes (older version 1.35, dbv 1945). I'll sacrifice a few cheap unused USB sticks to it, see if they get infected.
     
  9. plodr

    plodr Major Geek Super Extraordinaire

  10. blaster_bob

    blaster_bob Private E-2

    Thanks for these, I will work my way through them now.

    Unfortunately the computer in question is not connected to the web and it won't be connected any time soon, so I need an up to date, portable programme, that will run on Vista. Not sure what my bets bet is for that.
     
  11. blaster_bob

    blaster_bob Private E-2

  12. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    Please go to the Malware specialist only forum and look at the read and run first instructions and download MGTools.exe to a clean thumbdrive and transfer it to your desktop. Right click and "run as administrator" ... then once it is finished...attach the MGLogs.txt.
     
  13. blaster_bob

    blaster_bob Private E-2

    Will do.

    Out of interest, am I correct in thinking any infections on the PC or USB sticks are unlikely to do any damage to my Mac? I know you can't promise anything, I'm just trying to manage how many USB sticks I burn through with single usage, and how I get the logs from the off line PC back to this website without infecting anything else, I'm guessing my Mac is my best option?
     
  14. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    We don't do Mac's in this forum. We only do PC's for malware removal.
     
  15. blaster_bob

    blaster_bob Private E-2

    Understood, just trying to gauge the danger.
     
  16. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    It is a legit program that you can download from MS. In Windows10 and other versions. Not a clue as to MAC's.
     
  17. plodr

    plodr Major Geek Super Extraordinaire

    I know exe things don't run in linux so I just checked and exe files also do not run on Macs.

    So, take the suspected infected USB sticks. Plug them into a Mac and format them.
    Here's how
    https://www.macworld.com/article/234613/how-to-format-a-thumb-drive-for-both-mac-and-windows.html

    You can then put the clean sticks into another computer and format them into FAT32, if that's what you need.

    I use this on Windows computers to format
    https://www.bleepingcomputer.com/download/hp-usb-disk-storage-format-tool/
     
  18. Eldon

    Eldon Major Geek Extraordinaire

    @blaster_bob
    Have you done this?
     
  19. TimW

    TimW MajorGeeks Administrator - Jedi Malware Expert Staff Member

    His issues appears to be with a MAC.
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds